Displaying 14 results from an estimated 14 matches for "adomainuser".
Did you mean:
domainuser
2015 Jun 04
2
sssd on DC for fileserver
...re, the UNIX UID the file is owned by is
>> the old 'winbind' UID (e.g. 3000007) rather than the new 'sssd' UID
>> (e.g. 1514701182)
>
>
> The UID you refer to, has nothing to do with winbind, it is coming from
> idmap.ldb and if by running 'getent passwd adomainuser' you are getting
> something like this:
>
> DOMAIN\adomainuser:*:3000007:100:Adomain User:/home/DOMAIN/rowland:/bin/bash
>
> Then you must have a line like this in /etc/nsswitch.conf:
>
> passwd compat winbind
>
> As you have now installed sssd, replace 'winbind...
2015 Jun 02
4
sssd on DC for fileserver
Hi,
Some advice, if I may..
I have two Samba4 domain controllers, that I recently switched to
using sssd (against these same DCs) for UNIX user authentication -
this part works perfectly.
However, I am using one of these as a Samba file server also. When I
create a file via a SMB share, the UNIX UID the file is owned by is
the old 'winbind' UID (e.g. 3000007) rather than the new
2015 Jun 03
0
sssd on DC for fileserver
...reate a file via a SMB share, the UNIX UID the file is owned by is
> the old 'winbind' UID (e.g. 3000007) rather than the new 'sssd' UID
> (e.g. 1514701182)
The UID you refer to, has nothing to do with winbind, it is coming from
idmap.ldb and if by running 'getent passwd adomainuser' you are getting
something like this:
DOMAIN\adomainuser:*:3000007:100:Adomain User:/home/DOMAIN/rowland:/bin/bash
Then you must have a line like this in /etc/nsswitch.conf:
passwd compat winbind
As you have now installed sssd, replace 'winbind' with 'sss' and you
should g...
2015 Nov 17
1
Permission Issues with GPO
...s
>
> vfs objects = acl_xattr
> map acl inherit = Yes
> store dos attributes = yes
>
>
> [packages]
> path = /srv/samba/packages
> read only = no
> browsable = yes
> comment = "Software Packages"
>
>
> Viktor
Does 'getent passwd adomainuser' work ?
Rowland
2015 Jun 11
4
idmap & migration to rfc2307
Yup, strange - right!
Samba 4.2.2
RFC2307 attributes were added as follows:
# sed -e 's/${DOMAINDN}/dc=MYDOMAIN,dc=MY,dc=TLD/g' \
-e 's/${NETBIOSNAME}/MYDOMAIN/g' \
-e 's/${NISDOMAIN}/MYDOMAIN/g' \
/usr/local/samba/share/setup/ypServ30.ldif > ypServ30-JMH.ldif
# service samba4 stop
# ldbmodify -H
2015 Jun 04
0
sssd on DC for fileserver
...wned by is
> >> the old 'winbind' UID (e.g. 3000007) rather than the new 'sssd' UID
> >> (e.g. 1514701182)
> >
> >
> > The UID you refer to, has nothing to do with winbind, it is coming from
> > idmap.ldb and if by running 'getent passwd adomainuser' you are getting
> > something like this:
> >
> > DOMAIN\adomainuser:*:3000007:100:Adomain
> User:/home/DOMAIN/rowland:/bin/bash
> >
> > Then you must have a line like this in /etc/nsswitch.conf:
> >
> > passwd compat winbind
> >
> > As...
2015 Jun 04
2
sssd on DC for fileserver
...ld 'winbind' UID (e.g. 3000007) rather than the new 'sssd' UID
>> >> (e.g. 1514701182)
>> >
>> >
>> > The UID you refer to, has nothing to do with winbind, it is coming
>> from
>> > idmap.ldb and if by running 'getent passwd adomainuser' you are
>> getting
>> > something like this:
>> >
>> > DOMAIN\adomainuser:*:3000007:100:Adomain
>> User:/home/DOMAIN/rowland:/bin/bash
>> >
>> > Then you must have a line like this in /etc/nsswitch.conf:
>> >
>> > pas...
2015 Jun 11
0
idmap & migration to rfc2307
...from this list go to the following URL and read the
>> instructions: https://lists.samba.org/mailman/options/samba
>
>
Have you checked that your users actually have uidNumber attributes ?
What OS are you using ?
Do you have the winbind links in place ?
If you run 'getent passwd adomainuser' , does it print anything ?
if you run the command on the other DC, do you get the same result ?
The 3000007 ID number you refer to, is an xidNumber from idmap.ldb and
is created by samba. Nothing else as far as I am aware will alter
idmap.ldb, though there are a couple of files you can che...
2015 Oct 29
2
Samba AD: gidNumber?
On 27.10.2015 16:16, Rowland Penny wrote:
> On 27/10/15 14:58, Viktor Trojanovic wrote:
>>
>>
>> On 27.10.2015 13:54, Rowland Penny wrote:
>>> [...]
>>>> Yes, I meant the administrator. I did your suggested change on my
>>>> member server and restarted it. 'getent passwd administrator' is
>>>> still not returning anything,
2015 Oct 29
0
Samba AD: gidNumber?
...rse 127.0.1.1.
If you using Ubuntu with Network Manager, stop it using dnsmasq.
Check that pam is setup correctly, on debian you can do this by running
'pam-auth-update'
If everything seems correct, but 'getent passwd' doesn't return any
domain users, try 'getent passwd adomainuser', later samba versions only
return individual records.
Rowland
2015 Oct 29
0
Samba AD: gidNumber?
...a very good chance it will
get a massive overhaul soon, but I will look into whether any other Pam
info specifies that it is needed on a domain member.
Rowland
>> If everything seems correct, but 'getent passwd' doesn't return any
>> domain users, try 'getent passwd adomainuser', later samba versions
>> only return individual records.
>>
> I tried that, it doesn't return any values.
>> Rowland
>>
>>
>>
> Do you see some issue with my config? Obviously, most of the things
> seem to work, it's just this bloody acl m...
2015 Oct 29
2
Samba AD: gidNumber?
...m setup since I don't need the users to log in to Linux.
It is nowhere mentioned, neither on the wiki nor on the book that this
is a prerequisite for getent to work.
> If everything seems correct, but 'getent passwd' doesn't return any
> domain users, try 'getent passwd adomainuser', later samba versions
> only return individual records.
>
I tried that, it doesn't return any values.
> Rowland
>
>
>
Do you see some issue with my config? Obviously, most of the things seem
to work, it's just this bloody acl mapping..
2016 Jan 27
4
Samba 4 Active Directory Quotas
Good afternoon,
I've this issue: I have followed the instructions in this thread but,
when I try to add quota.ldif I receive this error:
Unable to find attribute quota in the schema
ERR: (Invalid attribute syntax) "objectclass_attrs: attribute
'mayContain' on entry
'CN=systemQuotas,CN=Schema,CN=Configuration,DC=my_domain,DC=it' contains
at least one invalid
2015 Nov 17
4
Permission Issues with GPO
On 17/11/15 16:57, Viktor Trojanovic wrote:
> Hi Mathias,
>
> Thanks for replying. It seems you're describing the situation on the
> AD DC. Computer and user mode access to my DC works fine and without
> any issues but I can't access the shares of my *member* server *in
> computer mode*. In user mode, it all works just fine.
>
> Viktor
>
> On 17.11.2015